CVE-2023-3865
Linux Linux, linux kernel
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bound read in smb2_write ksmbd_smb2_check_message doesn't validate hdr->NextCommand. If ->NextCommand is bigger than Offset + Length of smb2 write, It will allow oversized smb2 write length. It will cause OOB read in smb2_write.
- CVSS
- 7.1
- EPSS
- 0.59% 44.8% percentile
- CISA KEV
- Not listed
- Published
- 2025.08.16